Prepare for release v3.106.0 - #2035
Conversation
Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
….0.0 (#2017) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…o 3.4.3 (#2019) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
… 6.1.0 (#2020) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…#2030) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…2009) Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com> Co-authored-by: panther-bot-automation <github-service-account-automation@panther.io>
Co-authored-by: panther-bot-automation <github-service-account-automation@panther.io>
Co-authored-by: panther-bot-automation <github-service-account-automation@panther.io> Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>
Co-authored-by: panther-bot-automation <github-service-account-automation@panther.io>
PR SummaryMedium Risk Overview Deprecates/disables several older scheduled queries/correlation rules (e.g., S3 security-controls correlation rule, various scheduled query-based sprays/scans, and some Dropbox/GSuite/Kubernetes scheduled rules) and updates packs/indexes accordingly; also replaces Okta AD “pantherflow baseline” lookup tables with new SQL-based lookup table definitions (30/90/180d windows). CI/automation maintenance: bumps GitHub Action pins ( Reviewed by Cursor Bugbot for commit 7b2f2b0. Bugbot is set up for automated code reviews on this repo. Configure here. |
There was a problem hiding this comment.
Cursor Bugbot has reviewed your changes and found 1 potential issue.
❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.
Reviewed by Cursor Bugbot for commit 7b2f2b0. Configure here.
| global_filter_snyk | ||
| global_filter_tailscale | ||
| global_filter_tines | ||
| AWS.S3.Disable.Security.Controls |
There was a problem hiding this comment.
Deprecated rules missing from deprecated.txt tracking file
Medium Severity
This commit adds AWS.S3.Disable.Security.Controls to deprecated.txt but omits six other rules that also receive Status: Deprecated in the same commit: VPCFlow.Port.Scanning, CloudTrail.Password.Spraying, GSuite.Drive.Many.Documents.Deleted, Kubernetes.SecretEnumeration, Dropbox.Many.Deletes, and Dropbox.Many.Downloads. Notably, GSuite.Drive.Many.Documents.Deleted is the only rule in this batch being changed from Enabled: true to Enabled: false, making its omission from the deprecation tracking particularly impactful.
Additional Locations (2)
Reviewed by Cursor Bugbot for commit 7b2f2b0. Configure here.


Background
Changes
Testing